Earlier quoted context omitted.
You can’t have it both ways. Either it’s widely available, or it isn’t. If it’s already widely available then HIBP doesn’t accomplish anything. (It doesn’t anyway, since it doesn’t “shame” anybody except people who are already signed up, who only need and get their own info.) If it isn’t widely available then HIBP is helping people who are bad at collecting and using this information to do so. We accept that from bug…
You're not getting that the alternative is much worse. Your data is out there. Period. The end. You don't have control over that. All you're doing is trying to re-establish control over data you already lost. The question now is, do you want it only in the hands of people who want to harm you, or do you want it in the hands of both people who want to harm you as well as people who want to help you? You seem to only w…
Now apply this same thinking to the OPM breach and security clearances.
Now apply this same thinking to medical records breaches.
I don't want anyone to have my data, but I resign myself to the fact that data security is, and never will be perfect. That does not mean I resign myself to the fact that all my personal data should be freely available to the entire world via a well documented REST API.